FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
kjay
Staff
Staff
Article Id 421320
Description

This article describes the checklist and troubleshooting steps to verify the integration status between FortiGate and a managed FortiSwitch.


If the FortiLink connection or switch management is not functioning properly, the following items should be validated on both FortiGate and FortiSwitch.

Scope FortiGate with FortiLink-managed FortiSwitch.
Solution

FortiGate verification steps: Verify local NTP server configuration. Ensure FortiGate is configured as a local NTP server for FortiSwitch:

 

Under GUI, go to System -> Settings -> Setup device as local NTP server (enable). Listen on Interfaces: Select the FortiLink interface.

 

NTP.jpg

 

  • Check FortiSwitch connection status.
  • Verify the overall switch-controller connection.

 

execute switch-controller get-conn-status

 

get-con.jpg

 

  • Verify the connection for a specific FortiSwitch:

 

execute switch-controller get-conn-status <FortiSwitch Serial Number>

 

get-con2.jpg

 

Note:

How to change the password on a Managed FortiSwitch. Refer to the following article: Technical Tip: Change password on a Managed FortiSwitch.

 

FortiSwitch verification steps:

  • Accessing the FortiSwitch using the console. Connect using 115200 baud.

 

console.jpg

 

  • SSH access over FortiLink. If the switch received an IP from FortiGate:

 

execute ssh admin@10.255.1.2 

 

sw_con.jpg

 

  • Verify NTP synchronization status:

 

diagnose sys ntp status

 

sw_ntp.jpg

 

  • Verify system date/time & Check NTP configuration:

 

execute date
execute time

show system ntp

 

sw_ntp2.jpg

 

Expected Result:

If all verification steps above show no issues, the FortiSwitch status will appear as 'Online' under: WiFi & Switch Controller -> Managed FortiSwitches (the displayed status text may vary depending on the FortiOS version).

 

managed.jpg

 

Note:

If the FortiSwitch still does not come online, verify that the FortiSwitch OS and FortiOS versions are compatible. This can be checked using the compatibility matrix from this document: FortiLink Compatibility.